BIND caching nameserver - how to discard recieved ADDITONAL SECTION from other namese

    Hi all,

    On internal caching nameserver I have forward zones for internal domains, type forward, forward only.
    In case when DNS query is not having particular record in forward list it goes on the internet and get some answers from there. The problem is that same domains are internal and external and can happen that external IP addresses will be in cache of caching nameserver and that is not ok. Tests proved that this is happening because some other nameservers when give us an answer also deliver public IP which is in additional section, and caching server goes to this IP addresses, and not to internal ones that it has in forward list.

    Is there any bind option or way of implementation to discard any receieved additional of given answer from outside?

    I have task to learn caching server with some local IP addresses, and
    not let it to collect them from internet. Is there any way to do that
    without creating zone for them?


